Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:47600
HistoryJun 18, 2024 - 9:08 a.m.

Improper Privilege Management

2024-06-1809:08:30
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
1
rancher
privilege management
vulnerability
roletemplate
clusterrole
externalrules

7.2 High

AI Score

Confidence

High

Rancher is vulnerable to Improper Privilege Management. The vulnerability is due to privilege escalation checks not being properly enforced for RoleTemplate objects when external=true, allowing rules from a ClusterRole to be ignored under certain contexts, which has been fixed by introducing a new ExternalRules field to the RoleTemplate CRD.

7.2 High

AI Score

Confidence

High

Related for VERACODE:47600